The affected TBox RTUs are missing authorization for running some API commands. An attacker running these commands could reveal sensitive information such as software versions and web server file contents.
Metrics
Affected Vendors & Products
References
History
Tue, 26 Nov 2024 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2023-06-29T20:30:13.093Z
Updated: 2024-11-26T19:21:53.870Z
Reserved: 2023-06-23T20:39:08.360Z
Link: CVE-2023-36607
Vulnrichment
Updated: 2024-08-02T16:52:53.640Z
NVD
Status : Modified
Published: 2023-06-29T21:15:09.917
Modified: 2024-11-21T08:10:03.440
Link: CVE-2023-36607
Redhat
No data.